Privacy Policy
This policy explains what Agent Foundry collects, why, how it is used, and the controls you have over your data. Plain language first; specifics below.
The short version
- We keep what you create so the product works — your runs, the documents the rooms produce, your conversations, your projects, and the files you upload.
- We do not sell your data.
- You can export everything as a single JSON file at any time, from Settings → Export my data.
- You can delete your data, or delete your account entirely, at any time, from Settings. Deletion is permanent.
What we collect
Account information. When you sign in, our authentication provider (Clerk) manages your identity — your name, username, email address, and credentials. We reference your account to scope your data to you; we never store your password.
Content you create. Ideas you brief, the hand-off documents the rooms produce (including their full contents), conversations and messages, projects and folders, and metadata about files you upload (such as name, type, and size).
Operational data. Coarse, non-identifying usage signals — for example, a rough measure of time spent in the app — used to improve the product and to time optional in-app prompts. Standard server logs and error reports help us keep the service reliable and secure.
Feedback you send. If you submit the in-app survey or a contact message, we keep what you wrote so we can act on it and, if you ask, reply to you.
How your data is isolated
Every account's data is stored under strict per-tenant isolation. Your runs, documents, conversations, projects, and uploads are scoped to your account at the database level, so one account can never read another's data.
How we use your data
- To run the product: generate documents, keep your history, and let you pick up where you left off.
- To keep the service working, secure, and reliable.
- To understand how the product is used in aggregate and improve it.
- To respond to your support requests and feedback.
Hand-off documents are immutable
A core part of how Agent Foundry works: the documents the rooms produce are immutable and hash-linked. Once sealed, a document's content cannot be edited or silently rewritten — this is the integrity guarantee the product is built on. When you delete your data, your documents are removed along with the rest of your content.
Sharing and third parties
We use a small number of service providers to run Agent Foundry — for example, authentication, hosting, and the model providers that power the rooms. They process data only to provide their service to us, under their own terms. We do not sell your personal data, and we do not share it for advertising.
The AI rooms may send the content of your briefs and documents to model providers in order to do the work you asked for. Treat anything you would not want processed by a third-party model as sensitive, and avoid submitting it.
Data retention
We keep your content for as long as your account exists, so the product remains useful to you. When you delete specific data or your whole account, it is removed permanently. Backups and logs are kept only as long as needed for security and reliability, then expire on a rolling basis.
Your controls
- Export: download all of your data as JSON from Settings → Export my data.
- Delete your data: erase your runs, documents, conversations, projects, and uploads from Settings → Delete my data. This is irreversible.
- Delete your account: remove your sign-in account and all associated data from Settings → Delete account. This is irreversible.
Depending on where you live, you may have additional rights over your personal data (such as access, correction, or portability). The export and deletion controls above are built to honour these directly; for anything else, contact us.
Security
We protect your data with per-tenant database isolation, encrypted connections, and access controls. No system is perfectly secure, but we work to keep your data safe and to respond quickly if something goes wrong.
Children
Agent Foundry is not directed to children, and we do not knowingly collect data from anyone under the age required by law in their region.
Changes to this policy
We may update this policy as the product evolves. When we make a material change, we will update the date below and, where appropriate, notify you in the app.
Contact
Questions about your privacy or this policy? Reach us from Settings → Contact & feedback, or email the address listed on our site.